Management policy in Forefront Identity Manager (FIM) is implemented by creating multiple ManagementPolicyRule objects. A ManagementPolicyRule defines one or more conditions/events that can occur in the FIM Service. It can also grant rights, map workflows to the event, or both.

When FIM receives requests through the FIM Service, FIM evaluates all Request Management Policy Rule resources (ManagementPolicyRule resources with the ManagmentPolicyRuleType value set to Request) that apply to that request as described in Request Processing.

Set Transition ManagementPolicyRule resources (ManagementPolicyRule resources with the ManagementPolicyRuleType value set to SetTransition) are used to map events in which resources transition in or out of a set for any reason and associate action workflows with those events. These ManagementPolicyRule resources cannot grant rights.

